theY4Kman / parsuricata
Parse Suricata rules
☆13Updated last year
Related projects ⓘ
Alternatives and complementary repositories for parsuricata
- Pure python parser for Snort/Suricata rules.☆27Updated 8 months ago
- Collection of various open-source an commercial rulesets for NIDS (especially for Suricata and Snort)☆20Updated last year
- Configuring the Suricata IDS to detect DoS attacks by adding custom rule file.☆39Updated 4 years ago
- automatic enumeration and maintenance of Suricata monitoring interfaces☆11Updated 4 years ago
- Command-line tool to format and syntax highlight Suricata rules☆13Updated 4 years ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆66Updated 6 months ago
- Useful resources for Zeek(https://zeek.org/) (Bro(http://bro.org/))☆31Updated 4 years ago
- Network timing evaluation used to detect beacons, works with argus flow as the source☆19Updated 8 years ago
- pyJARM is a library for doing JARM fingerprinting using python☆50Updated 3 years ago
- Application and service identification rules for Suricata☆29Updated 2 years ago
- Meer is a "spooler" for Suricata / Sagan.☆28Updated last year
- Suricata rule and intel index☆29Updated last month
- SysFlow documentation and issues tracker☆45Updated last month
- Go implementation of the Community ID flow hashing standard☆19Updated 2 months ago
- Threat Detection Rules (Snort/Sigma/Yara)☆13Updated 9 months ago
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆50Updated 4 months ago
- ☆10Updated 5 years ago
- ssdeep cluster analysis for malware files☆29Updated 4 years ago
- Growing collection of Spicy-based protocol and file analyzers for Zeek☆31Updated 2 months ago
- Snort/Suricata DAQ module with DPDK patch☆11Updated 7 months ago
- Code for BH21 talk: "Generating YARA Rules by Classifying Malicious Byte Sequences"☆16Updated 3 years ago
- Golang based web service to scan files with yara rules☆27Updated 7 years ago
- 欺骗防御Linux版本Agent☆13Updated 3 years ago
- Plugin providing AF_XDP support for Bro.☆14Updated 3 years ago
- suricata rules to pcap☆9Updated 3 years ago
- ☆38Updated 11 months ago
- Plugin providing native AF_Packet support for Zeek.☆33Updated 7 months ago
- HTTP Protocol Stack CVE-2021-31166☆13Updated last month
- A dsniff project using bro☆10Updated 8 years ago
- go-atomicredteam is a Golang application to execute tests as defined in the atomics folder of Red Canary's Atomic Red Team project (https…☆46Updated last year